Google's AVDH Tool Identifies Over 100 Critical Vulnerabilities in Two Days

Google's AVDH Tool Identifies Over 100 Critical Vulnerabilities in Two Days

First seen 19 Aug 2026, 11:10 UTC Feeds2.FeedburnerCloud.Googlewww.drupal.orgcyberdefensesummit.mandiant.com 86% similarity 70.5

Article Content

Browse articles
ThreatCluster

Google's Mandiant has revealed the effectiveness of its Agentic Vulnerability Discovery Harness (AVDH), which found over 100 critical vulnerabilities in just two days during an investigation of stolen corporate repositories. The AVDH tool, operational for ten months, utilizes AI agents to analyze vast amounts of source code, uncovering significant flaws at an unprecedented speed. In addition to the rapid discovery of vulnerabilities, AVDH has been instrumental in identifying critical issues in widely used web extensions and open-source projects, resulting in multiple CVEs, including CVE-2026-13242 and CVE-2026-55803, both published on July 10, 2026. This tool has proven essential for enhancing vulnerability detection processes and accelerating incident response efforts. The findings underscore the growing importance of AI in cybersecurity, particularly in the context of defending against adversarial AI misuse.

Key Points: • Mandiant's AVDH tool found over 100 critical vulnerabilities in two days. • The tool has been in use for ten months, scanning millions of lines of code. • CVE-2026-13242 and CVE-2026-55803 were published on July 10, 2026.

ThreatCluster AI How this analysis works

Timeline

2026-07-10
CVE-2026-13242 published
CVE-2026-13242 was published, highlighting a critical vulnerability identified by AVDH.
Cloud.Google
2026-07-10
CVE-2026-55803 published
CVE-2026-55803 was published, marking another critical vulnerability discovered by AVDH.
Cloud.Google
2026-08-19
Mandiant discloses AVDH findings
Mandiant disclosed that AVDH found over 100 critical vulnerabilities during a live investigation.
Feeds2.Feedburner

Community

Browse all →

Tracked Entities in This Story